CVE-2022-38153
published 2022-08-31CVE-2022-38153: An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle attackers…
PriorityP430medium5.9CVSS 3.1
AVNACHPRNUINSUCNINAH
EPSS
1.80%
76.0th percentile
An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle attackers or a malicious server can crash TLS 1.2 clients during a handshake. If an attacker injects a large ticket (more than 256 bytes) into a NewSessionTicket message in a TLS 1.2 handshake, and the client has a non-empty session cache, the session cache frees a pointer that points to unallocated memory, causing the client to crash with a "free(): invalid pointer" message. NOTE: It is likely that this is also exploitable during TLS 1.3 handshakes between a client and a malicious server. With TLS 1.3, it is not possible to exploit this as a man-in-the-middle.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | wolfssl | < wolfssl 5.5.3-1 (bookworm) | wolfssl 5.5.3-1 (bookworm) |
| wolfssl | wolfssl | — | — |
| wolfssl | wolfssl | >= 0 < 5.5.3-1 | 5.5.3-1 |
| wolfssl | wolfssl | >= 0 < 5.5.3-1 | 5.5.3-1 |
| wolfssl | wolfssl | >= 0 < 5.5.3-1 | 5.5.3-1 |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_oracle5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
wolfSSL 5.3.0 TLS denial of service (EUVD-2022-40750 / Nessus ID 259384)
vuldb·2026-06-22·CVSS 5.9
CVE-2022-38153 [MEDIUM] wolfSSL 5.3.0 TLS denial of service (EUVD-2022-40750 / Nessus ID 259384)
A vulnerability classified as problematic has been found in wolfSSL 5.3.0. This vulnerability affects unknown code of the component TLS Handler. This manipulation causes denial of service.
This vulnerability is handled as CVE-2022-38153. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
GHSA
GHSA-9cp4-7v5m-jx89: An issue was discovered in wolfSSL before 5
ghsa_unreviewed·2022-09-01
CVE-2022-38153 [MEDIUM] CWE-770 GHSA-9cp4-7v5m-jx89: An issue was discovered in wolfSSL before 5
An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle attackers or a malicious server can crash TLS 1.2 clients during a handshake. If an attacker injects a large ticket (more than 256 bytes) into a NewSessionTicket message in a TLS 1.2 handshake, and the client has a non-empty session cache, the session cache frees a pointer that points to unallocated memory, causing the client to crash with a "free(): invalid pointer" message. NOTE: It is likely that this is also exploitable during TLS 1.3 handshakes between a client and a malicious server. With TLS 1.3, it is not possible to exploit this as a man-in-the-middle.
OSV
CVE-2022-38153: An issue was discovered in wolfSSL before 5
osv·2022-08-31·CVSS 5.9
CVE-2022-38153 [MEDIUM] CVE-2022-38153: An issue was discovered in wolfSSL before 5
An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle attackers or a malicious server can crash TLS 1.2 clients during a handshake. If an attacker injects a large ticket (more than 256 bytes) into a NewSessionTicket message in a TLS 1.2 handshake, and the client has a non-empty session cache, the session cache frees a pointer that points to unallocated memory, causing the client to crash with a "free(): invalid pointer" message. NOTE: It is likely that this is also exploitable during TLS 1.3 handshakes between a client and a malicious server. With TLS 1.3, it is not possible to exploit this as a man-in-the-middle.
Oracle
Oracle Oracle Communications Risk Matrix: Policy (Apache Kafka) — CVE-2021-38153
vendor_oracle·2022-04-15·CVSS 5.9
CVE-2021-38153 [MEDIUM] Oracle Oracle Communications Risk Matrix: Policy (Apache Kafka) — CVE-2021-38153
Oracle Oracle Communications Risk Matrix: Policy (Apache Kafka) vulnerability
CVE: CVE-2021-38153
CVSS: 5.9
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2022 (APR 2022)
Debian
CVE-2022-38153: wolfssl - An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is...
vendor_debian·2022·CVSS 5.9
CVE-2022-38153 [MEDIUM] CVE-2022-38153: wolfssl - An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is...
An issue was discovered in wolfSSL before 5.5.0 (when --enable-session-ticket is used); however, only version 5.3.0 is exploitable. Man-in-the-middle attackers or a malicious server can crash TLS 1.2 clients during a handshake. If an attacker injects a large ticket (more than 256 bytes) into a NewSessionTicket message in a TLS 1.2 handshake, and the client has a non-empty session cache, the session cache frees a pointer that points to unallocated memory, causing the client to crash with a "free(): invalid pointer" message. NOTE: It is likely that this is also exploitable during TLS 1.3 handshakes between a client and a malicious server. With TLS 1.3, it is not possible to exploit this as a man-in-the-middle.
Scope: local
bookworm: resolved (fixed in 5.5.3-1)
bullseye: resolved
forky: resol
No detection rules found.
No public exploits indexed.
Trailofbits
Keeping the wolves out of wolfSSL
blogs_trailofbits·2023-01-12·CVSS 6.5
CVE-2022-38152 [MEDIUM] Keeping the wolves out of wolfSSL
Trail of Bits is publicly disclosing four vulnerabilities that affect wolfSSL: CVE-2022-38152, CVE-2022-38153, CVE-2022-39173, and CVE-2022-42905. The four issues, which have CVSS scores ranging from medium to critical, can all result in a denial of service (DoS). These vulnerabilities have been discovered automatically using the novel protocol fuzzer tlspuffin. This blog post will explore these vulnerabilities, then provide an in-depth overview of the fuzzer.
tlspuffin is a fuzzer inspired by formal protocol verification. Initially developed as part of my internship at LORIA, INRIA, France, it is especially targeted against cryptographic protocols like TLS or SSH.
During my internship at Trail of Bits, we pushed protocol fuzzing even further by supporting a new protocol (SSH), adding mo
Trailofbits
Keeping the wolves out of wolfSSL
blogs_trailofbits·2023-01-12·CVSS 6.5
CVE-2022-38152 [MEDIUM] Keeping the wolves out of wolfSSL
Trail of Bits is publicly disclosing four vulnerabilities that affect wolfSSL: CVE-2022-38152 , CVE-2022-38153 , CVE-2022-39173 , and CVE-2022-42905 . The four issues, which have CVSS scores ranging from medium to critical, can all result in a denial of service (DoS). These vulnerabilities have been discovered automatically using the novel protocol fuzzer tlspuffin . This blog post will explore these vulnerabilities, then provide an in-depth overview of the fuzzer.
tlspuffin is a fuzzer inspired by formal protocol verification. Initially developed as part of my internship at LORIA, INRIA, France , it is especially targeted against cryptographic protocols like TLS or SSH.
During my internship at Trail of Bits, we pushed protocol fuzzing even further by supporting a new protocol (SSH), add
http://packetstormsecurity.com/files/170605/wolfSSL-5.3.0-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2023/Jan/8https://blog.trailofbits.com/2023/01/12/wolfssl-vulnerabilities-tlspuffin-fuzzing-ssh/https://github.com/trailofbits/tlspuffinhttps://github.com/wolfSSL/wolfssl/pull/5476https://github.com/wolfSSL/wolfssl/releaseshttps://www.wolfssl.com/docs/security-vulnerabilities/http://packetstormsecurity.com/files/170605/wolfSSL-5.3.0-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2023/Jan/8https://blog.trailofbits.com/2023/01/12/wolfssl-vulnerabilities-tlspuffin-fuzzing-ssh/https://github.com/trailofbits/tlspuffinhttps://github.com/wolfSSL/wolfssl/pull/5476https://github.com/wolfSSL/wolfssl/releaseshttps://www.wolfssl.com/docs/security-vulnerabilities/
2022-08-31
Published